A focused, capable, and articulate Cyber Security Manager, with 17+ yrs. of total experience and 12+ yrs. of UAE exposure, has a robust track record of ensuring that Cyber Security Assessments are conducted to the highest professional and regulatory standards. A consummate professional who is more than able to ensure that all business and IT risks are anticipated, identified, recognized, managed, and appropriately planned for. Organized and dependable candidate successful at managing multiple priorities with a positive attitude. Willingness to take on added responsibilities to meet team goals.
The key strengths include but are not limited to, executing robust Cyber Security Plans, reviewing IT Strategies and managing larger-scale Cyber Security assignments. Right now, looking to take the next step in managing own Cyber Security/ Compliance team and a suitable position with a company that has a unique culture which encourages integrity, respect, excellence, and innovation where career can be developed.
Domain Exposure: Entertainment | Cinema | Leisure | Real Estate | Aviation | Healthcare | Banking | Broking | Printing | Retail | Automobiles | Hotels
Proven credentials: Cyber Security Frameworks, DevOps, Cloud Security, SOC/SIEM, IT Project Management, Internal/External Audits, SDLC, ISO 27001 & 20000, ITIL, ERP, Data Security/Protection, IDAM & GRC solutions.
Key Expertise: Cyber Security (SIEM, SOC, MSSP) IT Risk Assessment & Management Mobile App & Website (SDLC, DevOps) Network & Cloud Security (WAF, AWS, Azure) ERP Security (Oracle, SAP, Microsoft Dynamic) Enterprise Security Products Implementation (DLP, Endpoint, IDAM, MFA, SSO, etc.) Information Security Auditing (Systems, Networks, Applications & Databases) ISMS & ITSM Implementation & Maintenance (27001/20000) IT BCP/DR Implementations IT Policies & Procedures Development & Implementation Info Security Trainings (Internal & External) Project Management (Agile and Waterfall) CXO Relationship Management Team Management Certifications / Technical Trainings
Executive Profile: Proven credentials in – Cyber/ Information Security Frameworks, IT Audits, and Project Management. Broad hands-on/ knowledge of Network Security, Endpoint Security, EDR, Data Security, SIEM, DLP, SOAR, Deception, Threat Hunting and Cloud Security data encryption, and other industry-standard techniques and practices. Ability to conduct research into security issues and products as required. Knowledge of applicable practices and laws relating to data privacy and protection (GDPR).
Well versed in conducting and managing Vulnerability Assessment & Penetration Testing for systems, network, application & websites. Experience in IT Risk Assessment and Information Security auditing. Exceptional knowledge of InfoSec concepts, practices, and procedures Strong understanding of the organization's goals and objectives. Skilled in the development & implementation of IT policy, procedure, and operating procedures. Ability to effectively prioritize and execute tasks in a high-pressure environment. Experience working in a team-oriented, collaborative environment. Possessing communication, interpersonal, problem solving, analytical and leadership capabilities. Ability to present ideas in business-friendly and user-friendly language
Career Highlights: Cost savings of AED 10 million from numerous IT Licensing review exercise for IT Department. Won Sheikh Khalifa Government Excellence Program Award for Best Department (IT). Won Sheikh Khalifa Government Excellence Program Award for Best e-Services. Received GCC Best Portal Award 2011 (Kuwait). Ensured 100% result for GCAA Website as per GIA baselines in 2010 & 2011. Best IT Employee of the Quarter in 2010 (GCAA).
• Identifying, assessing, evaluating and reporting on Cyber Security risks in a manner that meets external and internal requirements, as well as supports forming a 360-degree view on enterprise cyber risks for MAF Entertainment
• Architects, designs, implements, and maintains information system security controls and safeguards pertaining to company IT assets and data
• Analyses trends, news and changes in threat and compliance environment with respect to organizational risks, advises IT senior management in developing and executing plans for compliance and mitigation of risks
• Define and implement appropriate KPIs to measure cybersecurity posture of the company
• Good understanding of managing internal and external audits (ISO & PCI) and assurance activities, including testing the design and operational effectiveness of security controls
• Comprehensive understanding of Cyber Security Frameworks (NIST, ISO 27001, GDPR, NESA, COBIT, PCI, etc.)
• Ability to review and coordinate changes to information security policies, procedures and standards
• In-depth knowledge and hands on in Security Domains: (Network Security, Endpoint Security, EDR, Data Security, SIEM, DLP, SOAR, Deception, Threat Hunting and Cloud Security, Audit & Compliance)
• Experience with Security functions including Incident Management, Change Management, Identity and Access Management, and Vendor Security Risk Management
• Good Knowledge of SIEM solutions like LogRhythm, ArcSight, and IBM QRadar, SIEM Architecture and health checks
• Review and responds to information system security incidents, including investigation of, countermeasures to, and recovery from computer-based attacks, unauthorized access, and policy breaches; interacts and coordinates with third-party responders
• Experience with IDAM industry standard methodologies and related solutions such as Active Directory, Azure AD, LDAP, SSO, MFA, etc
• Experience with PAM solutions such as SailPoint and CyberArk
• Strong understanding and experience with secure SDLC and DevOps and security automations
• Ability to operate and lead in a fast-paced organizational transformation and able to navigate and champion change across organizational complexity
• Project Management: Sources and implements new fit-for-purpose security solutions based on changing threat landscape to effectively protect the organization
• Effectively communicate with other teams involved in projects during entire project lifecycle
• Play the role of subject matter expert and support vendor to implement various InfoSec/Digital projects within MAF Entertainment.
• Conducts internal security audits, IT risk assessments, and business impact assessments and identify strategic opportunities to adopt industry-leading information security and compliance standards
• Applied effective time management techniques to meet tight deadlines.
• Demonstrated a high level of initiative and creativity while tackling difficult tasks.
• Cultivated interpersonal skills by building positive relationships with others.
• Used strong analytical and problem-solving skills to develop effective solutions for challenging situations.
• Exercised leadership capabilities by successfully motivating and inspiring others.
• Participated in team projects, demonstrating an ability to work collaboratively and effectively.
IT Security Architecture/ Planning
undefinedCISSP
CISSP
CISM
CDPSE
CEH
ITIL
ISO 27001
ISO 20000
CISA
CCNA
MCP